cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
373
Views
0
Helpful
1
Replies

Alot of connection denied messages from 1 source now what?

rshum
Level 1
Level 1

Watching my logs on a ASA running 7.2(4) and I see dozens (per minute) of icmp or tcp connections denied messages coming from the same address. Sniffer traces don't indicate any packets from that source are making into the "inside" network. How do I get it to stop? Do I report the address to my ISP and have them block it? Do I contact their ISP or just filter on that port at my gateway router?

1 Accepted Solution

Accepted Solutions

Kureli Sankar
Cisco Employee
Cisco Employee

You are correct. You need to get in touch with your ISP and have them block it right there so, these packets done even arrive on your side of the circuit.

-KS

View solution in original post

1 Reply 1

Kureli Sankar
Cisco Employee
Cisco Employee

You are correct. You need to get in touch with your ISP and have them block it right there so, these packets done even arrive on your side of the circuit.

-KS

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card